📦 Online Shoe Store

by Code Projects

🔍 What is Online Shoe Store?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-6354

HIGH CVSS 7.3 Jun 20, 2025

A critical SQL injection vulnerability exists in code-projects Online Shoe Store 1.0, specifically in the customer_signup.php file's email parameter. This allows remote attackers to execute arbitrary ...

CVE-2025-6343

HIGH CVSS 7.3 Jun 20, 2025

A critical SQL injection vulnerability exists in code-projects Online Shoe Store 1.0, specifically in the /admin/admin_product.php file's pid parameter. This allows remote attackers to execute arbitra...

CVE-2025-6317

HIGH CVSS 7.3 Jun 20, 2025

A critical SQL injection vulnerability in code-projects Online Shoe Store 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter in /admin/confirm.php. This affects all dep...

CVE-2025-6315

HIGH CVSS 7.3 Jun 20, 2025

CVE-2025-6315 is a critical SQL injection vulnerability in code-projects Online Shoe Store 1.0 that allows remote attackers to execute arbitrary SQL commands via the ID parameter in /cart2.php. This a...

CVE-2025-6306

HIGH CVSS 7.3 Jun 20, 2025

This critical SQL injection vulnerability in Online Shoe Store 1.0 allows remote attackers to execute arbitrary SQL commands via the Username parameter in the admin login page. Attackers can potential...

CVE-2025-6304

HIGH CVSS 7.3 Jun 20, 2025

CVE-2025-6304 is a critical SQL injection vulnerability in code-projects Online Shoe Store 1.0 that allows remote attackers to execute arbitrary SQL commands via the qty[] parameter in /cart.php. This...

CVE-2025-0207

HIGH CVSS 7.3 Jan 4, 2025

This critical SQL injection vulnerability in Online Shoe Store 1.0 allows attackers to manipulate database queries through the password parameter in login.php. Attackers can potentially extract sensit...

CVE-2025-0208

MEDIUM CVSS 6.3 Jan 4, 2025

CVE-2025-0208 is a critical SQL injection vulnerability in code-projects Online Shoe Store 1.0 that allows remote attackers to execute arbitrary SQL commands via the 'tid' parameter in /summary.php. T...

CVE-2025-0206

MEDIUM CVSS 5.3 Jan 4, 2025

CVE-2025-0206 is a critical improper access control vulnerability in code-projects Online Shoe Store 1.0 that allows unauthorized access to the admin panel via /admin/index.php. Attackers can remotely...

CVE-2025-0204

MEDIUM CVSS 6.3 Jan 4, 2025

CVE-2025-0204 is a critical SQL injection vulnerability in code-projects Online Shoe Store 1.0 that allows remote attackers to execute arbitrary SQL commands via the 'id' parameter in /details.php. Th...